The CISO Diaries

Syya Yasotornrat & Leah McLean

The path to cybersecurity leadership is not a direct route and it's those divergent routes that create the amazing stories and histories of leaders who are driving security to keep businesses and people safe. We’re Leah McLean and Syya Yasotornrat and we intend to give CISOs and cybersecurity professionals a place to be their authentic selves. These are the unedited stories told of how they got into cybersecurity, the real struggles they’ve persevered through, personal anecdotes that make them tick, and leadership advice based on experiences. We aren't the kind of cybersecurity podcasts that focuses on the technologies, or recent incidents. We are the podcast that focuses on the people behind the headlines and the incredible diversity of experiences and backgrounds. (And it's not lost on us that we're two awesome female hosts)! Let's face it: we are a cybersecurity tribe and we need all hands on deck! We hope you enjoy our CISO diary entries. After all, we're only human, right? Special thanks to our sponsor, Cyber Future Foundation, a non-profit global cybersecurity executive leadership community, where leaders, thinkers, and futurists discuss and develop actionable guidance and frameworks for a trusted and safer world.

  1. 04/21/2022

    Alex Rhodes, CISSP - Cybersecurity Research Engineer and Space Cyber Affluent; Youth and Community Engagement Director

    Alex Rhodes is a Cybersecurity Research Engineer and Space Cyber affluent. He also serves on the board of advisors and as Youth and Community Director for Whole Cyber Human Initiative. He's retired from the U.S. Army in 2018 as the Assistant Special Agent in Charge of the Digital Forensics Research Branch for the Army Criminal Investigative Division, (USACIDC). In addition to conducting digital forensics and felony investigations for the Army, he spent 5 years as a Russian Linguist and about 2 years as a Satellite Communications Specialist. After retiring from the Army, he worked for Lockheed Martin as a cybersecurity professional where he was awarded with the 2020 Technical Innovation Award for a classified cybersecurity project. ​Alex’s next assignment was with Peraton where he used his previous experience to assist with completely rebuilding and revamping the cybersecurity program for the 62nd Cybersecurity Squadron, U.S. Space Force. While working on an assignment to help secure satellite platforms, Alex wrote a research paper highlighting the vulnerabilities inherent within the Telemetry and Commanding (TT&C) system of a satellite. ​Currently, Alex is working as an Information Systems Security Engineer and cybersecurity researcher for Stephenson Technologies Corporation. He has co-authored a research paper into the HiveNightmare vulnerability with Paul Cummings. Currently, he is researching vulnerabilities inherent in a system of systems and critical infrastructure systems. Alex has numerous military and civilian awards over the last 20 years. He has an Associates in Russian Language from the Defense Language Institute, Foreign Language Center, a Bachelor’s of Science in Russian Studies from Excelsior College, and a Masters of Science in Cybersecurity with a focus in Information Assurance from Excelsior College. LinkedIn: https://www.linkedin.com/in/alexrhodes79/ Whole Cyber Human Initiative Non-Profit: https://www.wholecyberhumaninitiative.org/

    45 min
  2. 04/07/2022

    Val Mukherjee, CISSP, Chairman & Founder, Cyber Future Foundation & Servant Leader

    About Valmiki Mukherjee: Valmiki (Val) is Chairman and Founder of Cyber Future Foundation and a globally recognized expert in the cyber and cloud security industry with a focus on innovation and collaboration to address the Information Security needs of the future. He previously served as an Executive Director in the Cyber Advisory Services at EY. For several years, Val has served as a trusted advisor to a number of the top Fortune 500 C-Level executives, public agency leaders and education institution management teams. Val is considered as an original thought leader in the domain of Cyber Peace and in 2014 established the Cyber Peace Alliance, a global think/do tank of cybersecurity and policy experts advancing the concept of a secure and trusted Cyberspace. Val founded Cyber Future Foundation and its Constituents including the Cyber Peace Alliance to take the initiative forward. Val is known for his Commitment to the information security professional community and is constantly engaged as a leader and contributor within many standards initiatives, security alliances and consortium. He also serves as the Global Co-chair of Cloud Security Alliance's IAM domain. Val is also the Founder and Current Chairman of CSA North Texas which in a couple of years has grown to be a significant contributor to the global Cloud Security domains. He also addresses graduate classes at leading schools on Information Security, Risk Management and Cloud Security. Show Highlights: Cyber is a complex issue, you cannot just solve for it with academic knowledge, you need to have hands-on experience. Getting someone the hands-on experience is a problem, that’s why it’s a risk with entry level – this causes issues and problems.We need a constructive way to get these people meaningful hands-on experience and work.There has to be a pathway between academic learning, fundamental knowledge, so their base is strong. We need to build this in as much 'Left Shift' as possible and make sure that the digital citizens of tomorrow and of today get this experience for the workforce.To stand up a team like this in some organizations can be quite costly.Why don’t we shift it towards the final years of education and community experience so that they get that experience then. This is what my new Cybersecurity Venture will focus on.This is why Cyber Talent Week (April 22, 2022) is so imperative.Apprenticeship is a great model. The way the system is set up now makes it very hard to set this up – this is what we are changing.Social good can happen and commercial success can happen – they have to be together. LinkedIn: https://www.linkedin.com/in/valmikim Twitter: https://twitter.com/valmikim  Cyber Future Foundation: https://cyberfuturefoundation.org/index.html Cyber Talent Week: https://cybertalentweek22.eventbrite.com/

    51 min
  3. 04/04/2022

    Michael Gregg, CISSP, Chief Information Security Officer, North Dakota Information Technology - Be Legendary

    About Michael Gregg: Michael Gregg is the state of North Dakota’s Chief Information Security Officer. The state CISO is responsible for establishing and leading the strategic direction of cyber security for the state and advising the governor and legislators on key cyber issues. With Michael’s cyber experience span being over a period of two decades, he has been a pioneer of helping people interested in becoming IT professionals as well as seasoned IT professionals achieve by sharing knowledge by means of authoring over 25 IT cyber security books, including:  Inside Network Security Assessment, Hack the Stack, CISSP Exam Cram2, Build Your Own Network Security Lab ,and Certified Ethical Hacker Exam Prep2. He has developed high-level security classes and has been featured in newspapers, magazines, and on news programs such as MSNBC, The New York Times, Fox News, CBS News, etc. He enjoys contributing his time and talents where there is a need to help others learn and grow by holding board, committee, and advisory positions for non-profit organizations.  Michael is also a faculty member of Villanova University and creator of several of their security programs. He also serves as a site expert for four TechTarget sites, including SearchNetworking, SearchSecurity, SearchMobileNetworking, and SearchSmallBiz. He is a board member of a Houston area Habitat for Humanity. He holds a Bachelors degree, Masters degree, and many security certifications. LinkedIn: https://www.linkedin.com/in/michaelgregg01 NDIT: https://www.linkedin.com/company/ndgovndit Episode Highlights: Volunteer to get skillsLeadership is not a title, it’s what you doGoing to the gym is like doing security – It’s ongoingVendor Partnerships – Looking for win-winGive effective feedbackFocus on CollaborationAdvice - Be Honest, Humble, and HungryGET THE PRENUP!

    49 min
  4. 03/31/2022

    Christophe Foulon, CISSP, Workforce Development and Research Director, Whole Cyber Human Initiative

    About Christophe Foulon: Christophe Foulon, senior manager and cybersecurity consultant at F10 FinTech, brings over 15 years of experience as a CISO, vCISO, information security manager, adjunct professor, author, and cybersecurity strategist with a passion for customer service, process improvement, and information security. He also has spent more than 10 years leading, coaching, and mentoring people. As a security practitioner, Christophe is focused on helping businesses tackle their cybersecurity risks while minimizing friction, resulting in increased resiliency, and helping to secure people and processes with a solid understanding of the technology involved. He gives back by producing a podcast, “Breaking into Cybersecurity,” focused on helping people who are trying to transition into the cybersecurity industry by sharing the stories of those who have done it in the past 5 years to inspire those looking to do it now. Christophe holds a Master of Science in Information Technology, Information Assurance, and Cybersecurity, a graduate certificate in Information Systems, and a bachelor's degree in Business Administration/Information Systems from Walden University. He gives back to the community serving as a Career Coach, Adjunct Professor, Author, and Mentor among the Evolutionary Skills Development Network Discord server. Additionally, he joins as volunteer guest speaker to the Veterans Breaking into IT/Cybersecurity Mentorship monthly events. LinkedIn: https://www.linkedin.com/in/christophefoulon Twitter: https://twitter.com/chris_foulon?s=21 Breaking into Cybersecurity Podcast: https://m.youtube.com/c/BreakingIntoCybersecurity

    40 min

About

The path to cybersecurity leadership is not a direct route and it's those divergent routes that create the amazing stories and histories of leaders who are driving security to keep businesses and people safe. We’re Leah McLean and Syya Yasotornrat and we intend to give CISOs and cybersecurity professionals a place to be their authentic selves. These are the unedited stories told of how they got into cybersecurity, the real struggles they’ve persevered through, personal anecdotes that make them tick, and leadership advice based on experiences. We aren't the kind of cybersecurity podcasts that focuses on the technologies, or recent incidents. We are the podcast that focuses on the people behind the headlines and the incredible diversity of experiences and backgrounds. (And it's not lost on us that we're two awesome female hosts)! Let's face it: we are a cybersecurity tribe and we need all hands on deck! We hope you enjoy our CISO diary entries. After all, we're only human, right? Special thanks to our sponsor, Cyber Future Foundation, a non-profit global cybersecurity executive leadership community, where leaders, thinkers, and futurists discuss and develop actionable guidance and frameworks for a trusted and safer world.